Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2019-03-21 CVE-2019-5416 Path Traversal vulnerability in Localhost-Now Project Localhost-Now 1.0.2
A path traversal vulnerability in localhost-now npm package version 1.0.2 allows the attackers to read content of arbitrary files on the remote server.
network
low complexity
localhost-now-project CWE-22
7.5
2019-03-21 CVE-2019-0191 Path Traversal vulnerability in Apache Karaf
Apache Karaf kar deployer reads .kar archives and extracts the paths from the "repository/" and "resources/" entries in the zip file.
network
low complexity
apache CWE-22
6.5
2019-03-21 CVE-2018-20647 Path Traversal vulnerability in CAR Rental Script Project CAR Rental Script 2.0.8
PHP Scripts Mall Car Rental Script 2.0.8 has directory traversal via a direct request for a listing of an image directory such as an images/ directory.
network
low complexity
car-rental-script-project CWE-22
6.5
2019-03-21 CVE-2018-20646 Path Traversal vulnerability in Basic B2B Script Project Basic B2B Script 2.0.9
PHP Scripts Mall Basic B2B Script 2.0.9 has has directory traversal via a direct request for a listing of an image directory such as an uploads/ directory.
network
low complexity
basic-b2b-script-project CWE-22
6.5
2019-03-21 CVE-2018-20643 Path Traversal vulnerability in Entrepreneur JOB Portal Script Project Entrepreneur JOB Portal Script 3.0.1
PHP Scripts Mall Entrepreneur Job Portal Script 3.0.1 has directory traversal via a direct request for a listing of an image directory such as an assets/ directory.
6.5
2019-03-21 CVE-2018-20638 Path Traversal vulnerability in Chartered Accountant : Auditor Website Project Chartered Accountant : Auditor Website 2.0.1
PHP Scripts Mall Chartered Accountant : Auditor Website 2.0.1 has directory traversal via a direct request for a listing of an image directory such as an assets/ directory.
network
low complexity
chartered-accountant CWE-22
6.5
2019-03-21 CVE-2018-20635 Path Traversal vulnerability in Advance B2B Script Project Advance B2B Script 2.1.4
PHP Scripts Mall Advance B2B Script 2.1.4 has directory traversal via a direct request for a listing of an image directory such as an assets/ directory.
network
low complexity
advance-b2b-script-project CWE-22
4.3
2019-03-21 CVE-2018-20631 Path Traversal vulnerability in Website Seller Script Project Website Seller Script 2.0.5
PHP Scripts Mall Website Seller Script 2.0.5 allows full Path Disclosure via a request for an arbitrary image URL such as a .png file.
network
low complexity
website-seller-script-project CWE-22
5.3
2019-03-21 CVE-2018-20630 Path Traversal vulnerability in Advance Crowdfunding Script Project Advance Crowdfunding Script 2.0.3
PHP Scripts Mall Advance Crowdfunding Script 2.0.3 has directory traversal via a direct request for a listing of an uploads directory such as the wp-content/uploads/2018/12 directory.
5.3
2019-03-21 CVE-2018-20629 Path Traversal vulnerability in Charity Donation Script Project Charity Donation Script
PHP Scripts Mall Charity Donation Script readymadeb2bscript has directory traversal via a direct request for a listing of an uploads directory such as the wp-content/uploads/2018/12 directory.
network
low complexity
charity-donation-script-project CWE-22
5.3